https://exploitwatch-kappa.vercel.app/api/mcp ↗
Check dependencies against CISA's real Known Exploited Vulnerabilities feed.
app.vercel.exploitwatch-kappa/exploitwatch is a remote MCP server published at exploitwatch-kappa.vercel.app. It has been probed 6 times since 9/14/2026. It answered in 6 of them (100.0%), a near-uninterrupted record. Median response time is 328 ms, placing it among the faster endpoints. It offers a narrow, focused set of 1 tools. On the protocol side it still runs 2025-11-25 and has not moved to the newer spec.
Can an LLM agent pick the right tool here — names, descriptions and parameter clarity are assessed.
check_kev — Parameter 'dependencies' lacks format specification detailscheck_kev — Tool name abbreviation 'KEV' not fully explainedRisk: low
tools/list structure, inputSchema validity, and a functional smoke test — the components of the 0-100 score.
Tools the server advertised in the latest measurement — measured, not catalog-claimed.
check_kevCheck a comma-separated list of software dependency/product names (e.g. 'lodash, openssl, apache struts') against CISA's real, public Known Exploited Vulnerabilities (KEV) catalog. Returns any current matches with the CVE ID, description, date added, and known ransomware use -- grounded in CISA's live feed, not a guess. Useful for triaging whether a project's dependencies include anything under active exploitation right now.
dependenciesstringrequiredDerived by comparing consecutive probes — changes in era, protocol version, build and reachability.
Add this badge to your README — it updates automatically as measurements change.
[](https://mcpmetrics.io/servers/app-vercel-exploitwatch-kappa-exploitwatch)<a href="https://mcpmetrics.io/servers/app-vercel-exploitwatch-kappa-exploitwatch"><img src="https://mcpmetrics.io/badge/app.vercel.exploitwatch-kappa/exploitwatch/era.svg" alt="mcpmetrics"></a>You are seeing the last 7 days. Sign up for the full history. Which check failed and why is in the dashboard.
Sign up free to seeThe catalog entries whose name and description are closest to this one, found with the same index the search box uses.
CISA KEV catalog: active-exploit alerts, hourly. Register in-session — free testnet funds.
CISA Known Exploited Vulnerabilities catalog
Fact-check claims against independent sources — fast verdict or deep multi-step investigation.
SEC filings and insider trades in real-time. 10-K, 10-Q, 8-K, Form 4, and company lookup.
Agent-native fashion marketplace. Browse, design, purchase NFTs, launch brands on Base.
AVI RIFF check, file discarded
| Run | Era | Modern | ms | Legacy | ms | Versions |
|---|---|---|---|---|---|---|
| 2026-09-14 14:41:53 | Legacy | 200 | 293 | 200 | 278 | 2025-03-26 |
| 2026-09-14 12:38:15 | Legacy | 200 | 318 | 200 | 328 | 2025-03-26 |
| 2026-09-14 10:35:25 | Legacy | 200 | 515 | 200 | 526 | 2025-03-26 |
| 2026-09-14 08:31:43 | Legacy | 200 | 225 | 200 | 235 | 2025-03-26 |
| 2026-09-14 06:26:32 | Legacy | 200 | 2167 | 200 | 2175 | 2025-03-26 |
| 2026-09-14 04:24:59 | Legacy | 200 | 183 | 200 | 493 | 2025-03-26 |
Each block is one measurement round. Green: working response. Amber: responded but the server was returning errors (5xx). Red: no response at all.
Each cell is one probe run. Faded cells are incomplete probes — one leg did not answer, so the era is inconclusive.
The two probe legs separately: modern server/discover and legacy initialize.
Comments
Sign in to write a comment
No comments yet. Be the first.